Ecryption using EFS failes magically

J

John

We have a problem with EFS running Windows XP SP2 (Dutch).

Under both local and domain user accounts we can no longer encrypt
files using EFS.
The actions failes with

"Recovery policy configured for this system contains invalid recovery
certificate"

(or the Dutch equivalent)

We followed various links

http://www.atlguide2000.com/windowsxp/index.php?act=view&aid=114

http://www.microsoft.com/technet/prodtechnol/winxppro/maintain/default.mspx

http://support.microsoft.com/kb/q222022/

But so far we have had no success.

It does not seem to have anything to do with the recovery policy and
the 'recovery agent'.
We have not made any changes to the system.

It is unclear why the encryption suddenly stopped working...

Our only idea is that it could have anything to do with Windows
Update, because it might invalidate existing certificates.

Any suggestions?
Thanks for your time!

Johan
 
G

Guest

It may be that the File Recovery certificate that is installed in your
domain's EFS policy (that this machine is under) is expired. This would
affect both local and domain users who log onto the machine. Log onto the
machine as administrator and run rsop.msc. The recovery certificate that is
applying to this machine will be indicated in the right pane next to the
"Encrypting File System" node.

This link might also be helpful:
http://www.microsoft.com/technet/prodtechnol/winxppro/deploy/cryptfs.mspx

Thanks.
Pat
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top